CVE-2019-5694 is a DLL preloading vulnerability affecting NVIDIA Windows GPU Display Drivers (R390 and earlier), specifically within the NVIDIA Control Panel. An attacker with local system access could exploit this flaw by planting malicious DLLs, leading to denial of service or information disclosure through arbitrary code execution. Rated Medium with a CVSSv3 score of 6.5, this vulnerability requires high privileges and user interaction for exploitation. While not listed in CISA's KEV catalog and lacking public exploit code in Metasploit or ExploitDB, it has received some community discussion and media coverage, indicating awareness of the issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:nvidia:gpu_driver:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.